Bug 525712

Summary: cobbler marks newly created kernel images(tfpd) with wrong selinux fcontext
Product: [Fedora] Fedora Reporter: lejeczek <peljasz>
Component: cobblerAssignee: Michael DeHaan <mdehaan>
Status: CLOSED NOTABUG QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: medium Docs Contact:
Priority: low    
Version: 11CC: mdehaan
Target Milestone: ---   
Target Release: ---   
Hardware: x86_64   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2009-09-25 13:32:14 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description lejeczek 2009-09-25 11:00:05 UTC
Description of problem:
my(which I believe is a default setup) config is as follow:
tftpd keeps its content in:
/var/lib/tftpboot
when cobbler creates new distro/profile it correctly puts and build a path up to:
/var/lib/tftpboot/images/$_distro_names  -- up to here fcontext is: public_content_t
but then, files in all this dirs have this context: httpd_sys_content_t -- and this is where tftpd fails being not able to serve the files
I believe mainstream policy has correct context for this content as `restorecon` fixes it with: public_content_t

Version-Release number of selected component (if applicable):
cobbler-1.6.6-1.fc11.x86_64

How reproducible:


Steps to Reproduce:
1.
2.
3.
  
Actual results:


Expected results:


Additional info:

Comment 1 Michael DeHaan 2009-09-25 13:32:14 UTC
cobbler check lists instructions you must perform to set up the SELinux rules so context is applied correctly for newly created files.

It seems you did not perform those steps yet?